HackingVulnerability ExploitZero-DayData ExfiltratedCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
HYPERTHERM, INC.
bd_47f76f7378a66e17 · schema v1 · pii pii-v1
Full breach record for HYPERTHERM, INC. →Hypertherm, Inc. notified the New Hampshire Attorney General of a cybersecurity incident involving its Oracle E-Business Suite (EBS). An unauthorized actor exploited a previously unknown vulnerability (zero-day) in Oracle EBS in August 2025 to exfiltrate database tables. Hypertherm determined that the exfiltrated data contained names and Social Security Numbers of 166 New Hampshire residents. Notification letters were mailed on March 13, 2026, offering one year of credit monitoring via Kroll. Hypertherm applied the relevant Oracle patch and secured its EBS implementation.
Leak gap clock⏱ Leak >90d
⚠ no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
This filing is one of 2 about the same incident.View merged incident
A leak claim by cl0p about this victim predates this filing by 111 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_83bd71a5d5760112Texas State AGfiled 2026-03-16(3d gap)Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/hypertherm-20260313.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 13, 2026
- Raw hash
- f4066206a9d70227bf2cebe3e345dc782676fbfaf75d1e9f4048b60f26b64756
Reporting entity
- Name
- HYPERTHERM, INC.norm: hypertherm
- Domain
- hypertherm.com
Victim entity
- Name
- HYPERTHERM, INC.norm: hypertherm
- Domain
- hypertherm.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Mar 13, 2026
- Affected individuals
- 166
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- Leak >90d
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.